
Totally agree with - not worth the risk - get the critical ones (banking, tax, work, sites with saved credit card info, etc, done first then work your way through the rest over a few days or a couple of weeks).

Leaving nothing to chance would be my thought process. I would change all of my passwords if I were in this situation. The table shows the maximum time in the best case scenario favouring you - in the worst case favouring the bad actor you get cracked instantly or in a few seconds. If passwords aren't random enough then something that should take 3 years in the table below might be crackable in 2 minutes or less. You should aim to be "in the green" with your password (it's easier to do this with passphrases than passwords). BUT that is only if yours is one of the ones lost - it might not be and you may have nothing to worry about.Ĭheck out the table below - this assumes reasonable entropy (randomness) - so if you used very common words or people's names, etc, it will be quicker to crack.

random to some degree - the more the better) and long.? If not then there is a fair chance your particular vault may get cracked eventually - whether that's already happened or might happen in 3, 9, 19 months is hard to say. The issue is how strong was your Master Password in your LastPass vault - was it high entropy (i.e. Due to the uncertainty, I would recommend changing your passwords if there is any doubt that they might have been compromised. The issue would be if they were compromised prior.

If I migrate my data to 1Password, must/should I change all of my passwords? In other words, since my passwords were theoretically at risk over at LastPass, do they remain at risk here?
